Some Combinatorial Results towards State Recovery Attack on RC4

被引:0
|
作者
Das, Apurba [1 ]
Maitra, Subhamoy [1 ]
Paul, Goutam [2 ]
Sarkar, Santanu [1 ]
机构
[1] Indian Stat Inst, Appl Stat Unit, Kolkata 700108, India
[2] Univ Jadavpur, Dept Comp Sci & Engn, Kolkata 700032, W Bengal, India
来源
INFORMATION SYSTEMS SECURITY | 2011年 / 7093卷
关键词
Cryptanalysis; RC4; State Recovery Attack; Stream Cipher;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A stream cipher has an unobservable internal state that is updated in every step and a keystream output (bit or word) is generated at every state transition. State recovery attack on stream cipher attempts to recover the hidden internal state by observing the keystream. RC4 is a very widely used commercial stream cipher that has a huge internal state. No known state recovery attack on RC4 is feasible in practice and the best so far has a complexity of 2(241) (Maximov et al., CRYPTO 2008). In this paper, we take a different approach to the problem. RC4 has a secret index j of size one byte. We perform a combinatorial analysis of the complexity of RC4 state recovery under the assumption that the values of j are known for several rounds. This assumption of knowledge of j is reasonable under some attack models, such as fault analysis, cache analysis, side channel attacks etc. Our objective is not to devise an unconditional full state recovery attack on RC4, but to investigate how much information of j leaks how much information of the internal state. In the process, we reveal a nice combinatorial structure of RCA evolution and establish certain interesting results related to the complexity of state recovery.
引用
收藏
页码:204 / +
页数:2
相关论文
共 45 条
  • [41] A Novel Binary Hybrid PSO-EO Algorithm for Cryptanalysis of Internal State of RC4 Cipher
    Rizk-Allah, Rizk M.
    Abdulkader, Hatem
    Abd Elatif, Samah S.
    Elkilani, Wail S.
    Al Maghayreh, Eslam
    Dhahri, Habib
    Mahmood, Awais
    SENSORS, 2022, 22 (10)
  • [42] On non-negligible bias of the first output byte of RC4 towards the first three bytes of the secret key
    Goutam Paul
    Siddheshwar Rathi
    Subhamoy Maitra
    Designs, Codes and Cryptography, 2008, 49 : 123 - 134
  • [43] Some security results of the RC4+stream cipher
    Banik, Subhadeep
    Jha, Sonu
    SECURITY AND COMMUNICATION NETWORKS, 2015, 8 (18) : 4061 - 4072
  • [44] On non-negligible bias of the first output byte of RC4 towards the first three bytes of the secret key
    Paul, Goutam
    Rathi, Siddheshwar
    Maitra, Subhamoy
    DESIGNS CODES AND CRYPTOGRAPHY, 2008, 49 (1-3) : 123 - 134
  • [45] OPTICAL OBSERVATIONS OF THE X-RAY BINARY V1727 CYGNI (=4U 2129+47) DURING A LOW STATE - SOME UNEXPECTED RESULTS
    THORSTENSEN, JR
    BROWNSBERGER, KR
    MOOK, DE
    REMILLARD, RA
    MCCLINTOCK, JE
    KOO, DC
    CHARLES, PA
    ASTROPHYSICAL JOURNAL, 1988, 334 (01): : 430 - 435